CVE-2022-48341
23.02.2023, 06:15
ThingsBoard 3.4.1 could allow a remote authenticated attacker to achieve Vertical Privilege Escalation. A Tenant Administrator can obtain System Administrator dashboard access by modifying the scope via the scopes parameter.Enginsight
Vendor | Product | Version |
---|---|---|
thingsboard | thingsboard | 3.4.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration